
CVE-2026-18718
Found a 0-Day in Ghidra: Shared Project File Became a Code Execution Vector

Found a 0-Day in Ghidra: Shared Project File Became a Code Execution Vector

Proof-of-concept for CVE-2026-23001: demonstrates RCE through unsafe pickle deserialization in Hugging Face Transformers by crafting a malicious…

Generate malicious files using recently published bidi-attack (CVE-2021-42574)

CVE-2018-6574 this vulnerability impacts Golang go get command and allows an attacker to gain code execution on a system by installing a malicious…

Proof of concept for CVE-2024-24590

CVE-2024-24590 ClearML RCE&CMD POC

Proof-of-concept exploit for CVE-2024-32002, a Git submodule vulnerability enabling arbitrary code execution via crafted repositories and symlinks.

Deserialization of untrusted data can occur in versions 0.17.0 to 1.14.2 of the client SDK of Allegro AI’s ClearML platform, enabling a maliciously…

cve-2020-27955

Seagate Toolkit for Windows (Installer <2.35.0.6) is vulnerable to insecure DLL loading. The installer loads DLLs from the working directory without…

This is the exploit of CVE-2018-6574: go get RCE

LD_PRELOAD-based tool that hijacks gcc to inject malicious code into binaries during linking, enabling stealthy backdoor deployment without source…

Panthera(P.)uncia - Official CLI utility for Subdomain Center & Exploit Observer.